Skip to end of metadata
Go to start of metadata

You are viewing an old version of this content. View the current version.

Compare with Current View Version History

« Previous Version 2 Current »

You can find this module at the Company level only.

ConnectSecure scans Active Directory objects, automatically classifies them into a Problem Group, and helps identify potential security issues.

Active Directory scanning runs on the following intervals

Entra AD = automatically syncs once per day

Prem AD = syncs based on the Scheduler or every 15 minutes if AD Audit is Enabled

Active Directory Credentials are required: How To: Add Active Directory Credentials


CS-Video.png

Visit our YouTube Channel for more video content: https://www.youtube.com/@connectsecure


Table of Contents


Problems (AD) - Details

Access the Problems (AD) from the Active Directory category.

image-20240417-135339.png

NOTE: User Password Never Expires is excluded per NIST guidelines:

https://pages.nist.gov/800-63-FAQ/#q-b05

Problem Groups

Active Directory problems identified will be classified automatically into our Problem Groups, which include:

  • Active User Not Logged In For 30 Days

  • Computer Not Logged In For 30 Days

  • Empty Security Groups

  • Failed Login Attempts

  • MFA Not Enabled For Azure Users

  • Multiple Administrators in OU

  • Non-Security Enabled Groups

  • Password Policy Compliance

  • User Account Lockouts

  • User Password Not Required

These will default according to the Problem Count value from highest to lowest.

image-20240206-151518.png

Problem Group Details

Group Details will include the following fields.

Field

Description

Name

Displays the Active Directory category for the problem

Distinguished Name

Displays the unique (DN) for entry within Active Directory

(Example: CN=Access Control Assistance Operators,CN=Builtin,DC=ad,DC=mycybercns,DC=com)

Canonical Name

Displays the unique (CN) attribute associated with the object

(Example: Access Control Assistance Operators)

Display Name

Displays the full Active Directory display name

(Example: DC=ad,DC=mycybercns,DC=com)

Domain

Displays the associated Domain Name

(Example: ad.local)

Group Created

Displays the date/time stamp for the group creation date

Is Critical System Object

Displays a YES if true; otherwise, it is blank for FALSE

Managed By

Displays the managed by details, when applicable:

(Example: CN=Organization Management,OU=Microsoft Exchange Security Groups,DC=ad,DC=mycybercns,DC=com)

image-20240206-152736.png

Problems (AD) - Dashboard and Reporting Options

See the Active Directory data in the various dashboards in the overview section.

image-20250210-182052.png

This data is also available in the Standard Reports, Active Directory section.

image-20250210-182226.png

Problems (AD) - Toolbar Options

image-20250210-181407.png

Alerts

View our timeline style of System Events captured for each company. You can set an optional date filter range to target a specific date range of events.

image-20250206-143947.png

Info

Tap here to view your V4 Getting Started Info.

https://cybercns.atlassian.net/wiki/x/MIDKfw


image-20250206-144503.png

Click to access the related documentation page; this link is functional on all screens and will take you to the appropriate documentation page.


Layout Settings

Here, you can change the UI look and feel using various options, including the Theme for color, the Scheme for dark and light mode, the Layout for toolbar and module positions, and the toggle to set the table view default.

I prefer the Teal color, Light mode, and Classic layout with an asset table view.

image-20250206-150338.png

Get Support

Our support team is here to help. Use one of three options to start a support request.

  1. Email to support@connectsecure.com

  2. Login to our Freshdesk partner portal at https://cybercns.freshdesk.com

image-20240206-144508.png
  • No labels